| | |
| | | <?xml version="1.0" encoding="UTF-8"?> |
| | | <!-- |
| | | ! CDDL HEADER START |
| | | ! |
| | | ! The contents of this file are subject to the terms of the |
| | | ! Common Development and Distribution License, Version 1.0 only |
| | | ! (the "License"). You may not use this file except in compliance |
| | | ! with the License. |
| | | ! |
| | | ! You can obtain a copy of the license at |
| | | ! trunk/opends/resource/legal-notices/OpenDS.LICENSE |
| | | ! or https://OpenDS.dev.java.net/OpenDS.LICENSE. |
| | | ! See the License for the specific language governing permissions |
| | | ! and limitations under the License. |
| | | ! |
| | | ! When distributing Covered Code, include this CDDL HEADER in each |
| | | ! file and include the License file at |
| | | ! trunk/opends/resource/legal-notices/OpenDS.LICENSE. If applicable, |
| | | ! add the following below this CDDL HEADER, with the fields enclosed |
| | | ! by brackets "[]" replaced with your own identifying information: |
| | | ! Portions Copyright [yyyy] [name of copyright owner] |
| | | ! |
| | | ! CDDL HEADER END |
| | | ! |
| | | ! |
| | | ! Portions Copyright 2007 Sun Microsystems, Inc. |
| | | ! --> |
| | | |
| | | <adm:managed-object name="gssapi-sasl-mechanism-handler" |
| | | ! CDDL HEADER START |
| | | ! |
| | | ! The contents of this file are subject to the terms of the |
| | | ! Common Development and Distribution License, Version 1.0 only |
| | | ! (the "License"). You may not use this file except in compliance |
| | | ! with the License. |
| | | ! |
| | | ! You can obtain a copy of the license at |
| | | ! trunk/opends/resource/legal-notices/OpenDS.LICENSE |
| | | ! or https://OpenDS.dev.java.net/OpenDS.LICENSE. |
| | | ! See the License for the specific language governing permissions |
| | | ! and limitations under the License. |
| | | ! |
| | | ! When distributing Covered Code, include this CDDL HEADER in each |
| | | ! file and include the License file at |
| | | ! trunk/opends/resource/legal-notices/OpenDS.LICENSE. If applicable, |
| | | ! add the following below this CDDL HEADER, with the fields enclosed |
| | | ! by brackets "[]" replaced with your own identifying information: |
| | | ! Portions Copyright [yyyy] [name of copyright owner] |
| | | ! |
| | | ! CDDL HEADER END |
| | | ! |
| | | ! |
| | | ! Portions Copyright 2007 Sun Microsystems, Inc. |
| | | ! --> |
| | | <adm:managed-object name="gssapi-sasl-mechanism-handler" |
| | | plural-name="gssapi-sasl-mechanism-handlers" |
| | | package="org.opends.server.admin.std" extends="sasl-mechanism-handler" |
| | | xmlns:adm="http://www.opends.org/admin" |
| | |
| | | <adm:synopsis> |
| | | The |
| | | <adm:user-friendly-name /> |
| | | is used to perform all processing related to SASL GSSAPI authentication |
| | | using Kerberos V5. |
| | | is used to perform all processing related to SASL GSSAPI |
| | | authentication using Kerberos V5. |
| | | </adm:synopsis> |
| | | <adm:profile name="ldap"> |
| | | <ldap:object-class> |
| | |
| | | <ldap:superior>ds-cfg-sasl-mechanism-handler</ldap:superior> |
| | | </ldap:object-class> |
| | | </adm:profile> |
| | | <adm:property-override name="java-class"> |
| | | <adm:property-override name="java-class" advanced="true"> |
| | | <adm:default-behavior> |
| | | <adm:defined> |
| | | <adm:value> |
| | |
| | | </adm:defined> |
| | | </adm:default-behavior> |
| | | </adm:property-override> |
| | | <adm:property name="realm" mandatory="false"> |
| | | <adm:property name="realm"> |
| | | <adm:synopsis> |
| | | Specifies the realm that should be used for GSSAPI authentication. |
| | | </adm:synopsis> |
| | | <adm:description> |
| | | Specifies the realm that should be used by the server for GSSAPI |
| | | authentication. If this is not provided, then the server will attempt to |
| | | determine the realm from the Kerberos configuration of the underlying |
| | | system. Changes to this configuration attribute will take effect |
| | | immediately. |
| | | </adm:description> |
| | | <adm:default-behavior> |
| | | <adm:alias> |
| | | <adm:synopsis> |
| | | The server will attempt to determine the realm from the underlying |
| | | system configuration. |
| | | The server will attempt to determine the realm from the |
| | | underlying system configuration. |
| | | </adm:synopsis> |
| | | </adm:alias> |
| | | </adm:default-behavior> |
| | |
| | | </ldap:attribute> |
| | | </adm:profile> |
| | | </adm:property> |
| | | <adm:property name="kdc-address" mandatory="false"> |
| | | <adm:property name="kdc-address"> |
| | | <adm:synopsis> |
| | | Specifies the address of the KDC that should be used for Kerberos |
| | | processing. |
| | | </adm:synopsis> |
| | | <adm:description> |
| | | Specifies the address of the KDC that should be used for Kerberos |
| | | processing. If provided, this should be a fully-qualified DNS-resolvable |
| | | name. If this is not provided, then the server will attempt to determine |
| | | the KDC address from the Kerberos configuration of the underlying system. |
| | | Changes to this configuration attribute will take effect immediately. |
| | | If provided, this should be a fully-qualified DNS-resolvable name. |
| | | </adm:description> |
| | | <adm:default-behavior> |
| | | <adm:alias> |
| | |
| | | </ldap:attribute> |
| | | </adm:profile> |
| | | </adm:property> |
| | | <adm:property name="keytab" mandatory="false"> |
| | | <adm:property name="keytab"> |
| | | <adm:synopsis> |
| | | Specifies the path to the keytab file that should be used for Kerberos |
| | | processing. |
| | | Specifies the path to the keytab file that should be used for |
| | | Kerberos processing. |
| | | </adm:synopsis> |
| | | <adm:description> |
| | | Specifies the path to the keytab file that should be used for Kerberos |
| | | processing. If provided, this should be either an absolute path or one |
| | | that is relative to the server instance root. If this is not provided, |
| | | then the server will attempt to use the default keytab from the |
| | | underlying system configuration. Changes to this configuration attribute |
| | | will take effect immediately. |
| | | If provided, this should be either an absolute path or one that is |
| | | relative to the server instance root. |
| | | </adm:description> |
| | | <adm:default-behavior> |
| | | <adm:alias> |
| | |
| | | </ldap:attribute> |
| | | </adm:profile> |
| | | </adm:property> |
| | | <adm:property name="server-fqdn" mandatory="false"> |
| | | <adm:property name="server-fqdn"> |
| | | <adm:synopsis> |
| | | Specifies the fully-qualified domain name for the system. |
| | | Specifies the DNS-resolvable fully-qualified domain name for the |
| | | system. |
| | | </adm:synopsis> |
| | | <adm:description> |
| | | Specifies the DNS-resolvable fully-qualified domain name for the system. |
| | | If this is not provided, then the server will attempt to determine this |
| | | dynamically. Changes to this configuration attribute will take effect |
| | | immediately. |
| | | </adm:description> |
| | | <adm:default-behavior> |
| | | <adm:alias> |
| | | <adm:synopsis> |
| | | The server will attempt to dynamically determine the fully-qualified |
| | | domain name. |
| | | The server will attempt to dynamically determine the |
| | | fully-qualified domain name. |
| | | </adm:synopsis> |
| | | </adm:alias> |
| | | </adm:default-behavior> |
| | |
| | | </adm:profile> |
| | | </adm:property> |
| | | </adm:managed-object> |
| | | |